This page defines the Risk Statement Library used within AuditFlow OS.
The library provides reusable risk wording to support consistent finding quality, stronger reporting, and faster drafting across cyber, AI, data, governance, third-party, and IS4-style reviews.
It sits behind the Findings Register and Findings Catalogue as a reusable content asset.
The purpose of the Risk Statement Library is to:
The library does not replace judgement. It provides reusable wording patterns that should be adapted to the facts of the issue under review.
The Risk Statement Library is the reference set of standard risk statements used in AuditFlow OS.
It is used to: